Papers
Topics
Authors
Recent
Gemini 2.5 Flash
Gemini 2.5 Flash
119 tokens/sec
GPT-4o
56 tokens/sec
Gemini 2.5 Pro Pro
43 tokens/sec
o3 Pro
6 tokens/sec
GPT-4.1 Pro
47 tokens/sec
DeepSeek R1 via Azure Pro
28 tokens/sec
2000 character limit reached

Tracing Vulnerable Code Lineage (2103.12304v1)

Published 23 Mar 2021 in cs.SE and cs.CR

Abstract: This paper presents results from the MSR 2021 Hackathon. Our team investigates files/projects that contain known security vulnerabilities and how widespread they are throughout repositories in open source software. These security vulnerabilities can potentially be propagated through code reuse even when the vulnerability is fixed in different versions of the code. We utilize the World of Code infrastructure to discover file-level duplication of code from a nearly complete collection of open source software. This paper describes a method and set of tools to find all open source projects that use known vulnerable files and any previous revisions of those files.

User Edit Pencil Streamline Icon: https://streamlinehq.com
Authors (4)
  1. David Reid (6 papers)
  2. Kalvin Eng (7 papers)
  3. Chris Bogart (4 papers)
  4. Adam Tutko (4 papers)

Summary

We haven't generated a summary for this paper yet.